2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2018-14016MEDIUM5.5The r_bin_mdmp_init_directory_entry function in mdmp.c in radare2 2.7.0 allows remote attackers to cause a denial of ser...
CVE-2018-14015MEDIUM5.5The sdb_set_internal function in sdb.c in radare2 2.7.0 allows remote attackers to cause a denial of service (invalid re...
CVE-2018-12981MEDIUM5.4An issue was discovered on WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware before FW 02. The vulnerabilit...
CVE-2018-12979MEDIUM6.5An issue was discovered on WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware before FW 02. Weak permissions...
CVE-2018-0039MEDIUM6.5Juniper Networks Contrail Service Orchestration releases prior to 4.0.0 have Grafana service enabled by default with har...
CVE-2018-0035MEDIUM4.4QFX5200 and QFX10002 devices that have been shipped with Junos OS 15.1X53-D21, 15.1X53-D30, 15.1X53-D31, 15.1X53-D32, 15...
CVE-2018-0034MEDIUM5.3A Denial of Service vulnerability exists in the Juniper Networks Junos OS JDHCPD daemon which allows an attacker to core...
CVE-2018-0031MEDIUM5.3Receipt of specially crafted UDP/IP packets over MPLS may be able to bypass a stateless firewall filter. The crafted UDP...
CVE-2018-0029MEDIUM5.7While experiencing a broadcast storm, placing the fxp0 interface into promiscuous mode via the 'monitor traffic interfac...
CVE-2018-0026MEDIUM4.7After Junos OS device reboot or upgrade, the stateless firewall filter configuration may not take effect. This issue can...
CVE-2018-0025MEDIUM6.1When an SRX Series device is configured to use HTTP/HTTPS pass-through authentication services, a client sending authent...
CVE-2018-10232MEDIUM6.5Cross-site request forgery (CSRF) vulnerability in TOPdesk before 8.05.017 (June 2018 version) and before 5.7.SR9 allows...
CVE-2018-3693MEDIUM5.6Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of ...
CVE-2018-3632MEDIUM6.7Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 6.x / ...
CVE-2018-3629MEDIUM6.5Buffer overflow in event handler in Intel Active Management Technology in Intel Converged Security Manageability Engine ...
CVE-2018-12462MEDIUM4.8NetIQ iManager 3.1.1 addresses potential XSS vulnerabilities.
CVE-2018-1116MEDIUM4.4A flaw was found in polkit before version 0.116. The implementation of the polkit_backend_interactive_authority_check_au...
CVE-2018-10872MEDIUM6.5A flaw was found in the way the Linux kernel handled exceptions delivered after a stack switch operation via Mov SS or P...
CVE-2018-2432MEDIUM5.4SAP BusinessObjects Business Intelligence (BI Launchpad and Central Management Console) versions 4.10, 4.20 and 4.30 all...
CVE-2018-10890MEDIUM4.3A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. It was possible for the core_course_get_categori...
CVE-2018-10889MEDIUM4.3A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7. No option existed to omit logs from data privacy exports...
CVE-2018-1549MEDIUM5.4IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to HTTP response splitting attacks. ...
CVE-2018-1523MEDIUM5.4IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulner...
CVE-2018-1492MEDIUM4.3IBM Jazz Foundation products could allow a user with physical access to the system to log in as another user due to the ...
CVE-2018-1423MEDIUM4.3IBM Jazz Foundation products could disclose sensitive information to an authenticated attacker that could be used in fur...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now